4 August 2026.

The Hacker News report that "cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cPanel account and the server's administrative database identity".

Depending on the operating system and database engine configuration, “this may extend to operating-system-level compromise.”

cPanel patched the flaw in these builds:

  • 11.110.0.137
  • 11.118.0.71
  • 11.126.0.78
  • 11.134.0.48
  • 11.136.0.32
  • 138.1.6 for WP Squared.

Source: The Hacker News.

Check the version used by the cPanel for your hosting account.

If it is not one of the above (or later) then contact your hosting provider's technical support.

Read more: New cPanel critical flaw could let hosting customers run SQL as Database Root

Keep yourself informed

Keep up to speed with the latest security threats affecting your Joomla! CMS Website.

About The Hacker News

"The Hacker News (THN) stands as a top and reliable source for the latest updates in cybersecurity. As an independent outlet, we offer balanced and thorough insights into the cybersecurity sector, trusted by professionals and enthusiasts alike."

Subscribe to The Hacker News newsletter when you visit the following link.

And keep up to speed with the latest security threats affecting your Operating System, Web Browser and Website.

Read more: About 'The Hacker News' Media

Make Joomla! CMS Security your #1 Priority

We help and support managers responsible for Joomla! CMS websites in UK business and third sector organisations across Cheshire, Greater Manchester, Merseyside and North West England.

Read more: WYNCHCO Joomla! CMS Help & Support.

4 August 2026.

The Hacker News report that "cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cPanel account and the server's administrative database identity".

Depending on the operating system and database engine configuration, “this may extend to operating-system-level compromise.”

cPanel patched the flaw in these builds:

  • 11.110.0.137
  • 11.118.0.71
  • 11.126.0.78
  • 11.134.0.48
  • 11.136.0.32
  • 138.1.6 for WP Squared.

Source: The Hacker News.

Check the version used by the cPanel for your hosting account.

If it is not one of the above (or later) then contact your hosting provider's technical support.

Read more: New cPanel critical flaw could let hosting customers run SQL as Database Root

Keep yourself informed

Keep up to speed with the latest security threats affecting your Joomla! CMS Website.

About The Hacker News

"The Hacker News (THN) stands as a top and reliable source for the latest updates in cybersecurity. As an independent outlet, we offer balanced and thorough insights into the cybersecurity sector, trusted by professionals and enthusiasts alike."

Subscribe to The Hacker News newsletter when you visit the following link.

And keep up to speed with the latest security threats affecting your Operating System, Web Browser and Website.

Read more: About 'The Hacker News' Media

Make Joomla! CMS Security your #1 Priority

We help and support managers responsible for Joomla! CMS websites in UK business and third sector organisations across Cheshire, Greater Manchester, Merseyside and North West England.

Read more: WYNCHCO Joomla! CMS Help & Support.

By browsing our website you agree to its use of cookies. Cookie Policy.